Felipe_G0NZÁLEZ_SANTIAG0
2015-Oct-19 01:53 UTC
[Samba] applying policies to the Group Policy Creator Owner
Hi: When I add a user xUser to the Group Policy Creator Owner, xUser should be able to create a new GPO , right? However when I run: samba-tool gpo create new_gpo -U xUser , it throw an exception about insufficient ldap permissions. Then when I access via smb to the folder: domain/sysvol/Policies and the user xUser has permissions for creating folders, I mean, it has no ldap permissions. Any idea?
Open Group Policy Management. On the folder view left click the folder titled "Group Policy Objects". From the right choose the tab titled "Delegation". What groups are allowed to create GPO's. I's "Group Policy Creator Owners" group missing? On 10/18/2015 9:53 PM, Felipe_G0NZÁLEZ_SANTIAG0 wrote:> Hi: > When I add a user xUser to the Group Policy Creator Owner, xUser should be able to create a new GPO , right? > However when I run: samba-tool gpo create new_gpo -U xUser , it throw an exception about insufficient ldap permissions. > Then when I access via smb to the folder: domain/sysvol/Policies and the user xUser has permissions for creating folders, I mean, it has no ldap permissions. > > Any idea?-- -James